FlashArray pgroup Retention Lock SafeMode Protection
CVE-2023-32572

4.9MEDIUM

Key Information:

Vendor
CVE Published:
3 October 2023

What is CVE-2023-32572?

A flaw exists in FlashArray Purity wherein under limited circumstances, an array administrator can alter the retention lock of a pgroup and disable pgroup SafeMode protection.

Affected Version(s)

FlashArray Purity 6.3.0 <= 6.3.7

FlashArray Purity 6.4.0 <= 6.4.1

References

CVSS V3.1

Score:
4.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-32572 : FlashArray pgroup Retention Lock SafeMode Protection